Information Security Compliance Officer Required Qualifications & Certifications: Education Bachelor's degree in Cybersecurity, Information Technology, Computer Science , or a related field. A master's degree in information security , Risk Management, or Compliance is a plus. Certifications (Highly Valued) CISSP (Certified Information Systems Security Professional) CISM (Certified Information Security Manager) CISA (Certified Information Systems Auditor) ISO … Certified in Risk and Information Systems Control) GDPR Certification (e.g., IAPP CIPP/E, CIPM for data protection compliance) Experience Requirements: 3-5+ years of experience in Information Security, Compliance, or IT Risk Management. Experience with regulatory frameworks in UK & EU : GDPR (General Data Protection Regulation) ISO 27001 (Information Security Management Systems) Cyber Essentials Plus (UK government … backed security framework) DORA (Digital Operational Resilience Act) - EU financial sector PCI-DSS (if handling payment data) Experience in: Managing vendor risk assessments for third-party compliance. Handling incident response & reporting (e.g., Data Breach Notifications under GDPR). Key Skills & Technical Knowledge: Deep understanding of data protection laws (UK GDPR, EU GDPR, DPA 2018) . Familiarity with risk management More ❯
you're bold, tenacious, and creative, we believe you'd be a perfect match for us! The Role Triple-A is seeking a highly experienced and strategic Chief Information SecurityOfficer (CISO) to lead our information security vision, strategy, and operations for France and the wider European Union. You will be responsible for establishing and maintaining a … robust security posture, ensuring compliance with local and EU regulations (particularly ACPR and GDPR), and safeguarding our assets, data, and reputation in a dynamic and rapidly evolving fintech landscape. Key Responsibilities: Strategic Leadership: Develop, implement, and monitor a comprehensive information security and risk management strategy and program specifically tailored for Triple-A's French and EU operations, while … and other relevant data protection and cybersecurity directives (e.g., DORA, NIS2 if applicable). Liaise with regulatory bodies and auditors as required. Risk Management: Identify, evaluate, and mitigate information security risks across French/EU operations. Conduct regular risk assessments, vulnerability assessments, penetration testing, and business impact analyses. Security Operations & Incident Response: Oversee and enhance security operations More ❯
Social network you want to login/join with: MUST HAVE PREVIOUS BANKING EXPERIENCE TO BE CONSIDERED Job purpose The Information SecurityOfficer works within the Information Security Office of the Bank to ensure all information and cyber risks are identified, analysed, mitigated, and monitored, ensuring the smooth operation of the Bank. Where improvements are needed, the … ISO will contribute to the Information/Cyber Security Strategy and Roadmap, enabling both defence-in-depth and, where appropriate, defence-in-breadth to safeguard normal banking operations. The ISO will collaborate closely with Security Engineering, Security Operations, and Business Resilience Teams across the bank. The ISO addresses external attacks, mitigates zero-day vulnerabilities, and identifies security … targets are met and contributes to the continual improvement of the Bank's Cyber Assurance Framework, enhancing the control measures that defend the Bank. Key Responsibilities Collaborate with Information Security Engineering and Operations Teams to integrate security measures into business processes. Advise business units on security-related issues and initiatives. Oversee Second Line project activities to evaluate More ❯
celebrates new ideas and diverse perspectives. You can experience a world of opportunity and the chance to shape a career as unique as you. Position Summary WSP's Information Security Office (ISO) is responsible for the deployment and maintenance of the information security framework for both the IT organization and wider business community. This includes the Governance mechanisms … policies and processes, tools and technologies, and employee training required to protect WSP information and that of our clients. The role of Regional Information SecurityOfficer reports directly to the Business Information SecurityOfficer and is responsible for delivering the Information Security Framework into the applicable region of WSP. This is primarily an internally facing … role, although some interaction with clients and third parties may be required. This position requires a senior management professional with relevant experience and a strong working knowledge of IT security, risk management, regulatory compliance, information and public cloud service technology, IT operations management principles, and third-party security management. A little more about your role Specific areas of More ❯
London, England, United Kingdom Hybrid / WFH Options
WSP
celebrates new ideas and diverse perspectives. You can experience a world of opportunity and the chance to shape a career as unique as you. Position Summary WSP's Information Security Office (ISO) is responsible for the deployment and maintenance of the information security framework for both the IT organization and wider business community. This includes the Governance mechanisms … policies and processes, tools and technologies, and employee training required to protect WSP information and that of our clients. The role of Regional Information SecurityOfficer reports directly to the Business Information SecurityOfficer and is responsible for delivering the Information Security Framework into the applicable region of WSP. This is primarily an internally facing … role, although some interaction with clients and third parties may be required. This position requires a senior management professional with relevant experience and a strong working knowledge of IT security, risk management, regulatory compliance, information and public cloud service technology, IT operations management principles, and third-party security management. A little more about your role... Specific areas of More ❯
Come join us! We are seeking a qualified and experienced Information Systems SecurityOfficer (ISSO) to join our team. The ISSO will be responsible for ensuring the confidentiality, integrity, and availability of our company's information systems and data. This role involves implementing security policies, procedures, and controls, as well as monitoring and assessing the security posture of our IT infrastructure. The ideal candidate will have a strong background in cybersecurity, risk management, and compliance standards. Duties of an Information Systems SecurityOfficer may include: -Verify the implementation of the information system security program as delegated by the ISSM in support of NIST (800-53), FISMA compliance. -Implement and maintain security controls in accordance with the System Security Plan (SSP) and organizational policies. -Develop, document, continuous monitoring strategies, and compliance with the information system security program, ensuring alignment with CSA-provided guidelines for management, operational, and technical controls and informing ISSM of results and corrective action plans. -Conduct formal and informal vulnerability and risk assessments, scans throughout the More ❯
Seize your opportunity to make a personal impact as an Information Systems Security Officersupporting customer activities. GDIT is your place to make meaningful contributions to challenging projects and grow a rewarding career. At GDIT, people are our differentiator. As a ISSO, you will help ensure today is safe and tomorrow is smarter. Our work depends on an ISSO joining … our highly skilled team to be a premier provider of cyber security services to the customer. We provide consummate cyber security risk management "as a service" platform across multiple fabrics and centers. We have responsibility to ensure operational IT capabilities provide the client with necessary timeliness, accuracy and security of information demanded from all our highly professional … roles. Be the change, lead our change - join us! HOW AN ISSO WILL MAKE AN IMPACT Provide information assurance support to system(s) and program Maintain operational security posture for system(s) through customized Risk Management Framework (RMF) to ensure established security processes and procedures are followed Evaluate security solutions to ensure security requirements are met More ❯
Business Information SecurityOfficer (BISO) for News UK - News Corp Business Information SecurityOfficer, Cybersecurity Location: London As a global media and information services company, News Corp understands the importance of cybersecurity and mitigating risk across the organization. We believe in protecting our businesses and customers and are looking to build innovative solutions that will allow … global leader in cybersecurity. If cybersecurity is your passion and you want to be part of a cutting edge team, we want to hear from you! The Business Information SecurityOfficer (BISO) is the primary point of contact for News UK and supports the implementation of the Global Cybersecurity program within the business unit. As a trusted advisor … and oversight to the business to ensure the business is compliant with required cybersecurity requirements and policies. Combining business acumen with technical knowledge, this role assists in improving the security posture with respect to delivering services and partnering with News UK leadership. This role will understand the key assets and processes, identify and evaluate risks and controls, and suggest More ❯
Information Security & Compliance Officer Hybrid HSS ProService is revolutionising the building services industry, offering a cutting-edge online marketplace for tools, equipment, and materials. Building on HSS Hire's legacy, we're blending innovation and customer-driven solutions to focus on sustainability. We're looking for an experienced Information Security & Compliance Officer to lead and evolve … our security and compliance framework, protecting our customers, our data, and our business as we scale. The impact you’ll have: You’ll be the heart of our Governance, Risk & Compliance team, designing and delivering a security and compliance function that’s future-ready. From technical controls to cultural awareness, you’ll help us stay ahead of emerging … risks and regulations, ensuring our platform is resilient, secure, and trusted by every customer and supplier. A typical day: Develop and own our Information Security Management System (ISMS) aligned with ISO 27001 Maintain security policies, control frameworks, and ensure compliance with UK GDPR, Cyber Essentials Plus, PCI-DSS, and DPA Conduct risk assessments, manage our risk register, and More ❯
Chantilly, Virginia, United States Hybrid / WFH Options
GEOST Inc
Position Title Information Systems SecurityOfficer Requisition ID 1651 Home Office Location Tucson, AZ or Chantilly, VA FLSA Designation Exempt Hybrid/Remote Option No EEO Job Category Professionals Position Reports To Director, Security Pay Range TBD Supervises Others No FTE 1.0 Since its inception in 2004, Geost has been committed to solving mission-critical space domain … innovative culture that is the foundation of our business. Geost is an operating unit of LightRidge Solutions. Position Summary Geost seeks a motivated, career and detail-oriented Information Systems SecurityOfficer (ISSO) to join our team. This position will be based in our Tucson, AZ or Chantilly, VA location. Geost is a multi-tasking environment that demands customer … service, communication, and organizational skills. A successful candidate will be motivated, results-oriented, and have a willingness to learn. The ISSO will be responsible for implementing and maintaining security controls for systems, ensuring ongoing Authorization to Operate (ATO), and serving as a security advisor to system owners and development teams. Duties and Responsibilities Serve as the ISSO for More ❯
As the Information System SecurityOfficer , you will be responsible for maintaining the integrity and security of enterprise-wide systems, networks, and applications. You will manage cyber security initiatives through predictive and reactive analysis, articulating emerging trends to leadership and staff. As an active player during enterprise incident response efforts, you will drive incidents to timely … and complete resolution. You will review threat data from various sources and develop detection and response capabilities. You understand attack signatures, tactics, techniques, and procedures associated with advanced cyber security threats, and can conduct vulnerability audits and assessments. You will partner and work with the Information Technology department and other Intrepid departments to help remediate findings effectively and efficiently. … As the ISSO , you are expected to be fully aware of the enterprise's security goals as established by its stated policies, procedures, and guidelines and to actively work towards upholding those goals in partnership with Intrepid professionals. You'll hold a comprehensive understanding of Intrepid's network environment and develop strategies and processes to securely monitor, protect and More ❯
Social network you want to login/join with: MUST HAVE PREVIOUS BANKING EXPERIENCE TO BE CONSIDERED Job purpose The Information SecurityOfficer works within the Information Security Office of the Bank to ensure all information and cyber risks are identified, analysed, mitigated, and monitored, ensuring the smooth operation of the Bank. The ISO contributes to the … Information/Cyber Security Strategy and Roadmap, enabling defence-in-depth and defence-in-breadth to safeguard banking operations. The ISO collaborates closely with Security Engineering, Security Operations, and Business Resilience Teams across the bank. The ISO addresses external attacks, mitigates zero-day vulnerabilities, and identifies security flaws. It ensures that Executive Management's risk targets … are met and contributes to the continual improvement of the Bank's Cyber Assurance Framework. Key Responsibilities Collaborate with Security Engineering and Operations Teams to integrate security measures into business processes. Advise business units on security issues and initiatives. Oversee project activities to evaluate information security risks for new projects, products, and systems. Supervise resolution of More ❯
Chief Information SecurityOfficer (CISO) Location: London (Hybrid Working Model) Salary: Competitive + Bonus + Equity Options Type: Full-time, Permanent Chief Information SecurityOfficer (CISO) to join a fast-scaling, high-impact organisation in the heart of London. This is a strategic, foundational hire you will be responsible for designing and building out a brand … GRC) function from the ground up. As the company continues to grow, the need for a comprehensive and mature cybersecurity posture has never been greater. You will own the security vision and strategy while rolling up your sleeves to implement, scale, and continually improve our approach to GRC, risk management, threat mitigation, and compliance frameworks. Design and implement a … GDPR, PCI-DSS, etc.), working closely with legal and data protection teams. Act as the subject matter expert on cybersecurity at the board and executive level. Communicate risk posture, security investments, and incident updates clearly and confidently. Team Building: Provide leadership, mentoring, and continuous development. Guide the evaluation, adoption, and deployment of security tools and technologies that support More ❯
Herndon, Virginia, United States Hybrid / WFH Options
Shelby American Inc
management. We pride ourselves on our extensive experience and effective approach, ensuring that we lead with both innovation and integrity. The One 23 Group is seeking an Information System SecurityOfficer III Senior-Level , willing to work remotely, local to the Washington D.C. metropolitan area. The Information System SecurityOfficer III Senior-Level will provide cyber … security management, oversight, and customer support for maintaining the continuity of DHS Management Information System compliance in accordance with DHS, National Institute of Standards and Technology (NIST), and other applicable Federal standards. Duties Include: Applies extensive knowledge of a variety of the Cybersecurity fields concepts, practices, and procedures to ensure the secure integration and operation of all systems. Applies … Management Framework and FedRAMP. Applies extensive specialized knowledge of financial audit standards, classified system IA requirements and Privacy Act requirements. Applies extensive experience with evaluating system, network, or infrastructure security controls against requirements such as FISMA, FIPS, and NIST guidelines. Applies extensive knowledge and experience with all of the following criteria: Vulnerability scanning execution, assessment, and analysis operating system More ❯
regard to race, color, religion, sex, national origin, protected veteran status, or disability status. EEO/AA/M/F/Disabled/Vets Job Description : Business Information SecurityOfficer, Cybersecurity Location: London As a global media and information services company, News Corp understands the importance of cybersecurity and mitigating risk across the organization. We believe in … global leader in cybersecurity. If cybersecurity is your passion and you want to be part of a cutting edge team, we want to hear from you! The Business Information SecurityOfficer (BISO) is the primary point of contact for News UK and supports the implementation of the Global Cybersecurity program within the business unit. As a trusted advisor … business to understand business requirements and implement cybersecurity strategies, providing advice and oversight to ensure compliance with cybersecurity policies. This role combines business acumen with technical knowledge to improve security posture, understand key assets, identify risks, and suggest mitigation strategies. The individual will also oversee business compliance with cybersecurity policies and standards, monitoring and reporting risks and exceptions. Job More ❯
Information System SecurityOfficer - Cleared ISSO (TS SCI eligible) Location: Washington, DC Employment Duration: Full time Job Code: 2870 LTS is seeking an experienced Information System SecurityOfficer (ISSO) to support the coordination with business and technology teams, ascertaining system requirements, such as program functions, output requirements, input data acquisition, and system techniques and controls. The … environment is dynamic, and client needs are often evolving; flexibility and forward-thinking views are important for success. This position will require Active TS SCI eligible security clearance . This position is 100% on-site in Washington, DC . Responsibilities: Develop, implement, and maintain comprehensive information system security policies and procedures. Ensure that the organization's information systems … applicable standards, frameworks, and regulations (e.g., NIST, ISO 27001, HIPAA, FISMA, etc.). Conduct regular assessments and audits of information systems to identify vulnerabilities and ensure the effectiveness of security controls. Perform risk assessments and manage risk mitigation strategies for information systems. Oversee the implementation of security measures such as encryption, firewalls, intrusion detection/prevention systems, and More ❯
Charlotte, North Carolina, United States Hybrid / WFH Options
DaVita
a collaborative work environment. Our culture is merit-based, recognizing and rewarding performance and fostering a supportive and social atmosphere. Position Summary: Oasys is seeking a Sr. Information System SecurityOfficer to support the United States Coast Guard (USCG) at the Aviation Logistics Center (ALC)-Information Systems Division (ISD). The Sr. Information System SecurityOfficer (ISSO) will provide subject matter expertise in Risk Management Framework (RMF) execution, security control validation, continuous monitoring, and audit readiness to sustain the Authorization to Operate (ATO) lifecycle for mission-critical systems. The Senior ISSO will play a central role in ensuring systems maintain compliance with federal cybersecurity standards including NIST 800-53, FISMA, and DHS 4300A, and … will serve as a key security liaison across development, operations, and governance teams. Primary Responsibilities: Serve as the lead security representative for system RMF lifecycle activities, including control selection, implementation, testing, and documentation. Develop, review, and maintain key RMF artifacts such as System Security Plans (SSPs), Security Assessment Reports (SARs), Contingency Plans (CPs), and POA&Ms. More ❯
Swarthmore, Pennsylvania, United States Hybrid / WFH Options
Swarthmore College
adaptable, and innovative technological resources through which the College community is empowered to accomplish the College's mission and strategic plan. The opportunity: Reporting to the Chief Information Technology Officer (CITO), the Chief Information SecurityOfficer (CISO) is a member of the Information Technology Services (ITS) leadership team and is responsible for developing, implementing, and overseeing Swarthmore … College's comprehensive information security program. The CISO plays a critical role in protecting the confidentiality, integrity, and availability of College information assets across all technology platforms, including cloud and SaaS environments, in alignment with the College's academic mission and culture. The CISO provides strategic leadership and direction in identifying, evaluating, and mitigating information security risks, ensuring … compliance with relevant regulations, and fostering a security-aware culture across the College community. This position exercises considerable influence over IT projects and supervises information security staff, providing expert services and support to the entire community. Essential Responsibilities Strategic Leadership and Program Development Develop, implement, and maintain a comprehensive information security program aligned with the College's More ❯
Clarksburg, West Virginia, United States Hybrid / WFH Options
Leidos
and growth. This role would be serving a federal law enforcement agency in Clarksburg, WV with remote work possible. We are seeking a talented and experienced Senior Information Systems SecurityOfficer on our team. The ideal candidate will be responsible for providing leadership and guidance on all aspects of information systems security, ensuring compliance with government standards … NIST, OWASP, etc.), actively participating in Agile environments to integrate security throughout the development lifecycle, and leveraging strong technical experience across networking, system administration, and development, with a solid understanding of CI/CD, virtualization, and software-defined infrastructure. This role will be part of a strategic security leadership team which is part of a larger team that … is responsible for establishing and maintaining the organization's overall security strategy and posture. Primary Responsibilities: Manage and maintain the security posture of assigned information systems throughout their lifecycle. Develop, implement, and enforce information system security policies, standards, and procedures in alignment with NIST, OWASP, and other relevant government standards. Conduct risk assessments and vulnerability analyses to More ❯
cost effective and intuitive software solutions. Our Space Operations Program Directorate is passionate about making America the undisputed leader in Space because we understand that ensuring our nation's security for future generations depends on it. Parsons creates game changing space solutions by teaming highly respected subject matter experts with brilliant technologists. Do you want to be part of … a team that is helping the government solve major national security challenges in the space domain? We need your help. Our Team is looking for a Information Systems SecurityOfficer (ISSO). In this role you will get to focus on the cybersecurity aspects of system design to deal with cyber-related disruptions, minimizing misuse and malicious … Test (IATT), and Authority to Connect (ATC) for all existing and new Information Systems (IS) that require accreditation to include on premise and cloud platforms. Maintain and develop System Security Plans (SSP), Security Controls Traceability Matrices (SCTM), Risk Assessment Reports (RAR), Continuous Monitoring Plans (ConMon), Security Assessment Reports (SAR), and Plan of Actions and Milestones (POA&M More ❯
Gemini Industries Inc. provides technical, management and operations services to support National Security projects. We provide rapid response to the critical needs of our customers and those they serve. We perform analyses and develop operations plans to anticipate and prepare for the future. And we deliver advanced technology to improve our customer's success in executing its mission. Gemini … Work at a high operations tempo Integrated teams delivering rapid solutions. An attitude that balances I can make it better with As long as we succeed. Senior Information Systems SecurityOfficer Location: Arlington, VA (Pentagon) On site Clearance: TS/SCI Education: MA/MS (or BA/BS plus an additional 4 years of related work experience … that positively impact the client to either increase efficiency, effectiveness, or innovation. Master position tasks within 60 days and exceed requirements within 90 days. Responsibilities: The Sr. Information Systems SecurityOfficer (ISSO) supports cybersecurity and Information Assurance (IA) related processes for the Secretary of the Air Force - Security, Special Program Oversight, and Information Protection Directorate (SAF/ More ❯
London, England, United Kingdom Hybrid / WFH Options
MS Amlin
Role: Business Information SecurityOfficer Location: London - Hybrid Position: Full time, permanent The Business Information SecurityOfficer (BISO) plays a pivotal role in bridging the gap between business objectives, cybersecurity, and data protection strategy. The role focuses on excellence in protecting, detecting, resolving, mitigating, recovering, and learning from potential security exposures. The BISO will manage … appropriate cybersecurity and data protection posture across its ecosystem. It serves as a liaison between business leaders, cybersecurity teams, third parties, partners, market, and regulatory stakeholders, promoting a strong security culture and contributing to cybersecurity protection, resilience, and response capabilities. Key Responsibilities: Embed Information Security and Data Protection Strategy: serve as a trusted contact across MS Amlin, ensuring … uniform cybersecurity policies and practices. Collaborate with security teams to implement policies related to security operations, incident response, application security, and infrastructure. Assess and contribute to strategies for security practices, controls, resilience, risk identification, and responses. Advise on and embed the information security framework and certifications appropriate to the organization. Work with stakeholders to assess More ❯
insurance plans, 401K with company matching, PTO & paid holidays, employee referral program, and educational assistance. Additional details can be found on our website at: Position Title : DHS Information System SecurityOfficer II Location: NCR Clearance: TS/SCI OneZero Solutions is on contract to provide division-wide support for Federal Information Security Modernization Act (FISMA) compliance, execution … of the Risk Management Framework (RMF) process to achieve and maintain Authority to Operate (ATO) accreditations and deliver cyber security compliance for DHS operational mission systems. We are looking for personnel to support our DHS customer in achieving its mission of providing division-wide cyber security support for operational mission systems and assisting programs as they navigate the … process. The result of these efforts will be that the systems meet all the requirements for ATO approval before they are officially submitted to the Office of Chief Information Officer (OCIO). Qualified Parking Allowance: Employer may provide a monthly stipend or cover the cost of parking for employees who commute to government site by car. Job Summary Develop More ❯
About The Role The Chief Information SecurityOfficer (CISO) is a senior leader responsible for establishing and maintaining the organisation's vision, strategy, and programs related to information security. The CISO plays a crucial role in safeguarding the organisation's sensitive data, intellectual property, and information systems from potential threats and cyberattacks. The CISO collaborates with various departments … including IT, legal, business risk, and business units, to ensure the implementation of effective security measures and adherence to industry best practices and regulatory requirements. As CISO, you will be responsible for: Information Security Strategy: Develop and communicate a comprehensive information security strategy that aligns with the overall business goals and objectives. Ensure adherence to this strategy … across the entire technology estate. Risk Management: Identify, assess, and prioritise security risks, considering potential impact on the organisation's operations, reputation, and finances. Implement security risk mitigation measures and foster a security-aware organisational culture. Security Governance: Work with the Data Protection team to establish and maintain the organisation's information security governance framework More ❯
Warwick, Warwickshire, United Kingdom Hybrid / WFH Options
ICEO
Information SecurityOfficer About the role: We're seeking a seasoned Information SecurityOfficer to drive our security strategy from the ground up. As the first dedicated security leader, you'll be at the forefront of protecting our systems, data, and users, ensuring we can scale securely and remain fully compliant. You'll steer … policy creation, oversee risk management, drive security testing, and collaborate company-wide to embed security in everything we do. About us: BeOne is a next-generation neobank that redefines how individuals and businesses manage money by blending traditional and digital finance. Our platform offers multi-currency accounts, ultra-low fees, real-time global payments, and robust financial tools … intuitive, refined interface. Our bold vision is to become the largest regulated funds and data transfer network for both retail and business customers. We empower users with financial freedom, security, and efficiency, whether for personal finances, business operations, or global investments. What you will do: Drive the company's information security strategy, ensuring alignment with GDPR, ISO More ❯